Manage Users and Groups

You can also perform user authentication by integrating Eucalyptus
with an existing LDAP or Active Directory. This information
cannot be changed from Eucalyptus side when LDAP/AD integration is
turned on. However, other Eucalyptus-specific information about
user, group and account is still stored within the local database of
Eucalyptus, including certificates, secret keys and attached
policies.

For more information about synchronizing an existing LDAP or Active
Directory with Eucalyptus, see LDAP/AD Integration.

Access Overview
The Eucalyptus design of user identity and access management provides layers in the organization of user identities. This gives you refined control over resource access. Though compatible with the AWS IAM, there are also a few Eucalyptus-specific extensions that meet the needs of enterprise customers.

Access Tasks
This section provides details about the tasks you perform using policies and identities. The tasks you can perform are divided up into tasks for users, tasks for groups, and tasks for policies.